IPv6 Policy RWTH Aachen

Default Policy ist eingehend und ausgehend alles verbieten, außer:
Gesperrte Dienste
Traffic
Security - Eingehend
ICMPv6 - Message | Typ | Code | Direction | Description |
|---|---|---|---|---|
| Destination Unreachable | 1 | 0 | IN | No route to destination |
| Destination Unreachable | 1 | 1 | IN | administratively prohibited |
| Destination Unreachable | 1 | 2 | IN | not assigned |
| Destination Unreachable | 1 | 3 | IN | address unreachable |
| Destination Unreachable | 1 | 4 | IN | port unreachable |
| Packet Too Big | 2 | 0 | IN | |
| Time Exceeded | 3 | 0 | IN | Hop limit exceeded in transit |
| Time Exceeded | 3 | 1 | IN | Fragment reassembly time exceeded |
| Parameter Problem | 4 | 0 | IN | erroneous header field |
| 4 | 1 | IN | unrecognized next header type | |
| 4 | 2 | IN | unrecognized IPv6 option | |
| Echo Request | 128 | 0 | IN | |
| Echo Reply | 129 | 0 | IN | |
| Router Solicitation | 133 | 0 | IN | |
| Router Advertisement | 134 | 0 | IN | |
| Neighbor Solicitation | 135 | 0 | IN | |
| Neighbor Advertisement | 136 | 0 | IN | |
| Redirect Message | 137 | 0 | IN |
Dienst | Zielport | Protokoll | Richtung | Bemerkung | ||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ssh | 22 | TCP | IN | Nur zu angemeldeten Servern der RWTH sowie dedizierten Protokollen und Diensten
| ||||||||||
| http | 80 | TCP | IN | Nur zu angemeldeten Servern der RWTH und dedizierten Protokollen und Diensten
| ||||||||||
| https | 443 | TCP | IN | Nur zu angemeldeten Servern der RWTH und dedizierten Protokollen und Diensten
|
Security - Ausgehend
ICMPv6 - Message | Typ | Code | Direction | Description |
|---|---|---|---|---|
| Destination Unreachable | 1 | 0 | OUT | No route to destination |
| Destination Unreachable | 1 | 1 | OUT | administratively prohibited |
| Destination Unreachable | 1 | 2 | OUT | not assigned |
| Destination Unreachable | 1 | 3 | OUT | address unreachable |
| Destination Unreachable | 1 | 4 | OUT | port unreachable |
| Packet Too Big | 2 | 0 | OUT | |
| Time Exceeded | 3 | 0 | OUT | Hop limit exceeded in transit |
| Time Exceeded | 3 | 1 | OUT | Fragment reassembly time exceeded |
| Parameter Problem | 4 | 0 | OUT | erroneous header field |
| 4 | 1 | OUT | unrecognized next header type | |
| 4 | 2 | OUT | unrecognized IPv6 option | |
| Echo Request | 128 | 0 | OUT | |
| Echo Reply | 129 | 0 | OUT | |
| Router Solicitation | 133 | 0 | OUT | |
| Router Advertisement | 134 | 0 | OUT | |
| Neighbor Solicitation | 135 | 0 | OUT | |
| Neighbor Advertisement | 136 | 0 | OUT | |
| Redirect Message | 137 | 0 | OUT |
Dienst | Zielport | Protokoll | Richtung | Bemerkung | ||||||
|---|---|---|---|---|---|---|---|---|---|---|
| ssh | 22 | TCP | OUT | weltweit zu folgenden Diensten
| ||||||
| http | 80 | TCP | OUT | weltweit zu folgenden Diensten
| ||||||
| https | 443 | TCP | OUT | weltweit zu folgenden Diensten
|

